VoIP Hopper is a GPLv3 licensed security tool, written in C, that rapidly runs a VLAN Hop security test. VoIP Hopper is a VoIP infrastructure security testing tool but also a tool that can be used to test the (in)security of VLANs.

Can VLAN Hop without discovery, by the Administrator specifying a VLAN ID to attempt to "Hop" into (-v)

VoIP DHCP client: A fully integrated DHCP client. VoIP Hopper implements DHCP messaging as function calls instead of relying on the old 'dhcpcd' client. This opens up the door for future VLAN Discovery mechanisms for other vendors, such as Alcatel.

Avaya IP Phone VLAN discovery: Can spoof the DHCP client Option 176 used by an Avaya IP Phone in order to automatically discover the VVID, and VLAN Hop.

Nortel IP Phone VLAN discovery: Can spoof the DHCP client Option 191 used by a Nortel IP Phone in order to automatically discover the VVID, and VLAN Hop.

LLDP-MED support: Support for sniffing or spoofing LLDP-MED capabilities used by an IP Phone, in order to enumerate the Voice VLAN ID.

802.1q VLAN Discovery: By default, most ethernet switch ports that terminate IP Phones are enabled for 802.1q trunking, and permit access for at least two VLANs. The broadcast ethernet frames of IP Phones (ARP) will be sent, tagged, to all members (switch ports) of the broadcast domain (all IP Phones on the VoIP VLAN). By running a simple sniffer, you can capture the VVID. VoIP Hopper automates this method of VVID discovery.

Error correction with VLAN Interfaces: Implemented a feature that checks to see if the IP address is already configured for the voice interface before attempting to add the new virtual interface, and tag the DHCP request.

802.1x Anonymous Voice VLAN Bypass: VoIP Hopper can generate CDP packets in order to discover the Voice VLAN ID, as any IP Phone based on CDP would do. In this CDP spoof mode, VoIP Hopper will send two CDP packets in order to decipher the VVID, then it will iterate between sleeping for 60 seconds, and sending another packet. Not only is this faster than CDP sniffing, but it can also help bypass any mechanisms that rely on CDP for permitting access to the Voice VLAN.

MAC Address spoof, only on new VoIP Interface (keep default interface the same MAC Address) (-D)

Example Usage:

Some quick samples usages for VoIP Hopper are listed below.

One of the most effective ways to run VoIP Hopper is the new, interactive assessment mode. Simply run it as follows:

voiphopper -i eth0 -z

LLDP-MED spoofing: You can spoof LLDP-MED packets to quickly learn the Voice VLAN ID, as follows:

voiphopper -i eth0 -o 001EF7289C8E

There are three CDP modes for VoIP Hopper. Sniff (-c 0), Spoof with custom packet (-c 1), and Spoof with pre-made packet (-c 2). To sniff for CDP and run a VLAN Hop into the Voice VLAN, simply run VoIP Hopper on the ethernet interface, in the following way:

voiphopper -i eth0 -c 0

To spoof CDP in order to more rapidly hop to the Voice VLAN in Cisco SIP environments, run VoIP Hopper in the following way:

To spoof CDP with a pre-made packet generated by a Cisco 7971G-GE IP Phone:

voiphopper -i eth0 -c 2

VoIP Hopper also allows one to VLAN Hop to an arbitrary VLAN, without sniffing for CDP. If you already know the Voice VLAN ID, or would like to VLAN Hop into another VLAN (without sniffing for CDP), you can run it in the following way (target VLAN ID is '200'):

voiphopper -i eth0 -v 200

To discover the Voice VLAN in an Avaya IP Phone environment and automatically jump VLANs:

voiphopper -i eth0 -a

To discover the Voice VLAN in a Nortel IP Phone environment and automatically jump VLANs:

voiphopper -i eth0 -n

To spoof the MAC address of an IP Phone by sniffing for CDP (this changes the MAC address of default interface and new interface):

voiphopper -i eth0 -c 0 -m AA:AA:AA:AA:AA:AA

To spoof the MAC address of an IP Phone using an Avaya DHCP request (this changes the MAC address of default interface and new interface):

voiphopper -i eth0 -a -m AA:AA:AA:AA:AA:AA

To spoof the MAC address of an IP Phone by VLAN Hopping without CDP or DHCP (this changes the MAC address of default interface and new interface):

voiphopper -i eth0 -v 200 -m AA:AA:AA:AA:AA:AA

To spoof the MAC address of an IP Phone without changing the MAC address of the default ethernet interface (only spoof the new voice interface's MAC address):

Here is a tutorial demonstrating the new, exciting features for Assessment mode. Until I can integrate DHCP spoofing for Avaya/Nortel into assessment mode, I've also shown how to do both Avaya and Nortel VLAN discovery at the end of the video.

Here is a tutorial demonstrating the same live demo showed at DefCon 19, in which DHCP was disabled on the VoIP VLAN subnet. VoIP Hopper can still VLAN Hop and spoof the IP and MAC address of an IP Phone, as selected by the user. This is a demonstration of the "s" option of Assessment mode.

Attractive website on hackthepc.net.It is a power full site for us.Now a days it site has become vary popular & demanded site for all of us.So I like it. I think not new because there are a lot of individuals have already publish it or study it, but its okay. Please observe this , in your publish there are few terms that you not modify with properly after you used Search engines convert for convert it from your mom terminology into British.As I want to share The stress is on companies of all styles to improve earnings, cut expenses, and help preserve the earth. And movie Voip Business meetings allows you to do just that! But with so many services to select from; how do you determine which the best fit for your business is? Not to mention your budget.

This article will help everyone to know so much important information about on hackthepc.net. It is very alternative for people and helpful to anybody.It sites has been brought revolution change of human life.I hope that it is valuable site. You may know me by Find the best Web Conference for your business? Get cheap Web Conference with exclusive price for your business. You can get Web Conference with affordable services. Find the best The Best Web conference today.